Microsoft had released the initial dirsync tool to synchronize on premise AD user to office 365 and till recently, they updated the tool to support password synchronization. However in Feb 2015, Microsoft has released a completely different service - Microsoft Azure Active Directory Sync Services (AADSync). Azure Active Directory Sync allows you to onboard to Azure Active Directory and Office 365 with a single forest or multi forest on-prem Active Directory.
- The tool needs an instance of SQL Server to store identity data. By default a SQL Express LocalDB is installed and the service account for the service is created on the local machine during the install.
- Since Express has a 10GB size limit (it enables you to manage approximately 100,000 objects.) If you anticipate managing a higher volume of directory objects, you need to point the installation process to a different version of SQL Server.
- Install WAAD tool on new server
- Un-install Dirsync in Old Server
- Additional configuration of WAAD – OU Filtering
- Run Full Synchronization
Step1. Get your new Directory Sync Server ready and install the new WAAD Sync tool
Download AADSync: https://www.microsoft.com/en-us/download/details.aspx?id=47594
Installation of WAAD Sync Service
- Run the installer from the exe file
We would come back and perform the full synchronization once the old dirsyc tool is uninstalled.
Step2. Uninstall dirsync tool from the old Dirsync Server
Step3. Additional Configuration of WAAD Sync tool – OU Filtering
- Locate the Dirsync tool from Windows Control Panel Programs and Features and select uninstall
- Should you face any issue with complete uninstallation / cleanup of this tool, you can refer to my blog on Error Installing Directory Sync Tool.
Step4. Run Full Synchronization
- Launch the Azure AD Sync Synchronization Service
- Open the Connectors tab. Select the local AD connector properties
- Select Container from the Configure Directory Partition Tab
- Select the OU that needs to be synced to office 365
- Launch the Azure AD Sync Synchronization Service once again
- Select the connector type Active Directory Domain Service and select Run from Action Pane
- Select Full Import for run profiles.
It is important that we at times need to upgrade this key tool to take advantage of the latest features integrating on premise AD with Office 365. There are more reasons when organizations uses Hybrid Exchange when WAAD Tool allows AD Write back, the most useful feature we all waited for.
You can also perform an in-place upgrade of dirsync tool but it is not recommended as it is known to cause issue. For further reference please refer here.